CVE Vulnerabilities

CVE-2007-1990

Published: Apr 12, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

PHP remote file inclusion vulnerability in games.php in Sam Crew MyBlog, possibly 1.0 through 1.6, allows remote attackers to execute arbitrary PHP code via a URL in the id parameter, a different vector than CVE-2007-1968. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

Affected Software

NameVendorStart VersionEnd Version
MyblogSam_crew1.0 (including)1.0 (including)
MyblogSam_crew1.1 (including)1.1 (including)
MyblogSam_crew1.2 (including)1.2 (including)
MyblogSam_crew1.3 (including)1.3 (including)
MyblogSam_crew1.4 (including)1.4 (including)
MyblogSam_crew1.5 (including)1.5 (including)
MyblogSam_crew1.6 (including)1.6 (including)

References